- CheckMates
- :
- Products
- :
- Quantum
- :
- Security Gateways
- :
- rulebase internal error
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
rulebase internal error
Hello everybody
Some people have reported that they cannot access the internet. There are many alert logs in the firewall logs, which indicate rulebase internal error。View/var/log/message to display fhandle_ Pool_ Add: Table kbufs - All available pools exhausted, FW-1: fwx_ Create_ Xlbuf: error allocating kbuf, FW-1: fwx_ Get_ Xlation: fwxl is NULL.I unable to install policy either.
When I restart the firewall, it returns to normal.What caused this and how I can avoid it next time.
Checkpoint SMC is R81.20,Gateway is 4600,R80.40 TAKE 180.
Check the /var/log/message
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
If looks like a performance issue that might be address by some tuning. Look into sk149254 for more details and references.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
We noticed that both CPU and memory are very sufficient.It looks like some table is full.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Suggest upgrading the JHF to a more recent recommended one.
What is the current memory population of this appliance?
(Note 4600 are End of support and you should consider upgrading).
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
The memory of the appliance is currently 8GB, and we are planning to upgrade the new hardware by the end of the year. Can you help us determine what caused it? There are about 300 computers connected to the internet there.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Take 110
Released on 30 July 2023
PRJ-46113, |
Security Gateway |
In rare scenarios, the Security Gateway may drop the traffic after "Rulebase Internal Error" which occurs during policy installation. |
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello,
I know this is an old issue. However it is still present in R81.10 Jumbo HFA Take 150 in february 2025.
We had this issue in the past and TAC could not find the root cause.
we had it on a 64k and "asg_policy verify -v" should correct policy - however an immediate additional policy Install after the error occured only on 1 of 5 SGMs the issue was solved. And it started immediately after the first Policy Install.
So I suspect a Policy Install mechanism error and to solve it another Policy Install helps.
However this leads to business impact and tells me that this issue is not solved since 2019 undtil 2025.
Traffic dropped with message information: "Rulebas... - Check Point CheckMates
